aiosmtpd@1.4.4.post2 vulnerabilities

aiosmtpd - asyncio based SMTP server

Direct Vulnerabilities

Known vulnerabilities in the aiosmtpd package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
Insufficient Verification of Data Authenticity

aiosmtpd is an aiosmtpd - asyncio based SMTP server

Affected versions of this package are vulnerable to Insufficient Verification of Data Authenticity due to the improper handling of inbound SMTP connections. An attacker can send spoofed emails with fake sender addresses, enabling advanced phishing attacks by exploiting differences in the interpretation of the SMTP protocol.

How to fix Insufficient Verification of Data Authenticity?

Upgrade aiosmtpd to version 1.4.5 or higher.

[,1.4.5)